← All Advisories

Forcepoint NGFW security policy bypass affects versions across 7.1, 7.3, 7.4, and 7.5 branches

Last refreshed2026-09-30

Status: NEW  |  Advisory ID: CVE-2026-12974

Key Details

CVECVE-2026-12974
CVSS Score / Version7.9 (High) / CVSS v4.0
Updated2026-09-23
Classified asCWE-183 (Permissive List of Allowed Inputs)

What to Know

A Security Policy Bypass vulnerability exists in Forcepoint Security Engine (NGFW).

This issue affects Forcepoint Security Engine (NGFW): from 7.1.0 through 7.1.13, from 7.3.0 through 7.3.1, 7.3.3, from 7.4.0 through 7.4.1, and 7.5.0. (NVD)

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-12974
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-12974